CVE-2019-6719: Use After Free
An issue has been found in libIEC61850 v1.3.1. There is a use-after-free in the getState function in mms/isoserver/isoserver.c, as demonstrated by examples/serverexamplegoose/serverexamplegoose.c and examples/serverexample6140025/serverexample6140025.c.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-6719?
CVE-2019-6719 is classified as a high severity vulnerability due to the potential for remote code execution via a use-after-free condition.
How do I fix CVE-2019-6719?
To fix CVE-2019-6719, upgrade libIEC61850 to version 1.3.2 or above, which addresses the use-after-free issue.
What impact does CVE-2019-6719 have on libIEC61850?
CVE-2019-6719 allows an attacker to exploit the use-after-free vulnerability, potentially leading to application crashes or arbitrary code execution.
In which version of libIEC61850 is CVE-2019-6719 present?
CVE-2019-6719 is present in libIEC61850 version 1.3.1 and has been resolved in later versions.
How can I verify if my system is vulnerable to CVE-2019-6719?
To verify if your system is vulnerable to CVE-2019-6719, check the installed version of libIEC61850 and see if it is version 1.3.1.